1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Black screen of death? IE explorer closing down

Discussion in 'Malware and Virus Removal Archive' started by 10NY, 2005/02/16.

Thread Status:
Not open for further replies.
  1. 2005/02/16
    10NY

    10NY Inactive Thread Starter

    Joined:
    2004/06/08
    Messages:
    7
    Likes Received:
    0
    Hi..
    dunno y..
    since yesterday..
    my pc will suddenly just have a black screen which onli have my mouse cursor..
    and..
    nothing i click will be able to take me out from it..

    besides that..
    IE explorer quite often willl have problems and i will have no choice but to close it.

    and i play an online game called utopia..
    and i discovered that the .exe file that i had was modified..

    anyway
    here is my HTlogfile..
    thx a lot..

    Logfile of HijackThis v1.99.1
    Scan saved at 4:13:46 AM, on 2/17/2005
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Norton Internet Security\ISSVC.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\WINDOWS\system32\VTTimer.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\Utopia\Angel\Angel.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Internet Explorer\IEXPLORE.EXE
    C:\Documents and Settings\Wong\Desktop\HijackThis.exe

    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: Norton Internet Security - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: (no name) - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - (no file)
    O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
    O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
    O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe "
    O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe "
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [Utopia Angel] "C:\Utopia\Angel\angel.exe "
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
    O9 - Extra button: ICQ 4 - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
    O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.c...ls/en/x86/client/wuweb_site.cab?1106893158039
    O17 - HKLM\System\CCS\Services\Tcpip\..\{DA18CEF7-116D-4435-A25C-3263CBF72AFA}: NameServer = 202.188.1.5 202.188.0.133
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
    O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe


    tell me if u guys need the dump file too..
    thx again..
     
    10NY,
    #1
  2. 2005/02/16
    noahdfear

    noahdfear Inactive

    Joined:
    2003/04/06
    Messages:
    12,178
    Likes Received:
    15
    This is the only problem I see, which is a missing file for the FlashGet Toolbar. May want to post your problem in the Internet Explorer forum (without a HJT log) where it will get more looks.
     

  3. to hide this advert.

  4. 2005/02/16
    JoeHobart

    JoeHobart Inactive Alumni

    Joined:
    2004/05/19
    Messages:
    919
    Likes Received:
    1
    tell me if u guys need the dump file too..
    The what you say?

    I would like to hear about the exact progression of events leading to this black screen.
    I would also like to know if you see anything in your event viewer (check both the system, and applications logs) around the time that this phenomenon occurs.
    Is the explorer crash related to the black screen? Does it occur before or after you get the black screen?
    In the black screen state, if you press CONTROL-ALT-DELETE, can you bring up task manager? In the process tab, do you see explorer.exe running? If you File->New Task -> explorer.exe, does your machine recover?
     
  5. 2005/02/17
    10NY

    10NY Inactive Thread Starter

    Joined:
    2004/06/08
    Messages:
    7
    Likes Received:
    0
    hmm

    Hi..
    thx for helpin out..

    hmm
    basically the changes that i made these few days was..
    that i bought an external harddisk..copied a fair amount of stuffs from my frens..
    and i bought a DVDrom..
    but dunno y both my CDrom and DVDrom can't work at the same time.
    so i just connected the IDE cable to my DVDrom..

    then i tried to install war3..
    but dunno y it couldn't work..installed thru CD..and even direct transfer from ext. hard disk..
    it used to work..
    but this time it couldn't..

    then..
    soon..
    problems occur..where i will have to shut down IE explorer..
    and the black screen thingy.
    when i get the black screen thingy..
    no matter wat i click..CTRL-ALT-DEL, ALT F4, ALT-Tab...all has not effect..
    but the processor seems to be loadin/reading at lot during that time..

    another funny thing is that..
    when i open my task manager..
    i see that IEEXPLORE.EXE takes 22k memory
    CCAPP 20k mem..
    svchost 12k mem..
    is this normal?


    anyway
    here are some of the data from event viewer


    Faulting application iexplore.exe, version 6.0.2900.2180, faulting module mshtmled.dll, version 6.0.2900.2180, fault address 0x0005b3ac.
    Faulting application iexplore.exe, version 6.0.2900.2180, faulting module flash.ocx, version 6.0.79.0, fault address 0x000139fb.
    Faulting application rstrui.exe, version 5.1.2600.2180, faulting module mshtmled.dll, version 6.0.2900.2180, fault address 0x0005b3ac.
    Faulting application ccapp.exe, version 103.0.3.8, faulting module ntdll.dll, version 5.1.2600.2180, fault address 0x000111de.
    Faulting application ctfmon.exe, version 5.1.2600.2180, faulting module msutb.dll, version 5.1.2600.2180, fault address 0x0000c3a7.
    Fault bucket 173340464.
    Faulting application iexplore.exe, version 6.0.2900.2180, faulting module mshtml.dll, version 6.0.2900.2604, fault address 0x000683ad.
    Faulting application ctfmon.exe, version 5.1.2600.2180, faulting module msutb.dll, version 5.1.2600.2180, fault address 0x0000c3a7.
    Faulting application nmain.exe, version 103.0.2.10, faulting module mshtml.dll, version 6.0.2900.2604, fault address 0x000683ad.
    Faulting application angel.exe, version 0.0.0.0, faulting module mshtml.dll, version 6.0.2900.2604, fault address 0x000b43ac.
    Faulting application bnupdate.exe, version 2.84.0.0, faulting module bnupdate.exe, version 2.84.0.0, fault address 0x00016408.
    Fault bucket 105006260.

    Windows saved user WONGFAMILY\Wong registry while an application or service was still using the registry during log off. The memory used by the user's registry has not been freed. The registry will be unloaded when it is no longer in use.

    This is often caused by services running as a user account, try configuring the services to run in either the LocalService or NetworkService account.




    Error code 1000008e, parameter1 c0000005, parameter2 8056a763, parameter3 f58efb68, parameter4 00000000.
    Error code 0000000a, parameter1 00000048, parameter2 00000002, parameter3 00000000, parameter4 804f729b.
    The server {F3A614DC-ABE0-11D2-A441-00C04F795683} did not register with DCOM within the required timeout.
    Error code 1000008e, parameter1 c0000005, parameter2 bf8048ba, parameter3 f4eacc1c, parameter4 00000000.
    Error code 00000024, parameter1 001902fe, parameter2 fa30b95c, parameter3 fa30b658, parameter4 804f763b.
    The Application Layer Gateway Service service terminated unexpectedly. It has done this 1 time(s).
    Error code 00000050, parameter1 ffa85006, parameter2 00000000, parameter3 f4db33cb, parameter4 00000000.
    Error code 0000000a, parameter1 00000060, parameter2 00000002, parameter3 00000000, parameter4 804ef0c1.
    The system failed to flush data to the transaction log. Corruption may occur.
     
    10NY,
    #4
  6. 2005/02/17
    10NY

    10NY Inactive Thread Starter

    Joined:
    2004/06/08
    Messages:
    7
    Likes Received:
    0
    cont

    some other error report file..

    <?xml version= "1.0" encoding= "UTF-16 "?>
    <DATABASE>
    <EXE NAME= "IEXPLORE.EXE" FILTER= "GRABMI_FILTER_PRIVACY ">
    <MATCHING_FILE NAME= "HMMAPI.DLL" SIZE= "38912" CHECKSUM= "0xD85D870C" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Microsoft HTTP Mail Simple MAPI" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "HMMAPI.DLL" INTERNAL_NAME= "HMMAPI" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x2" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x1667F" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 07:56:15" UPTO_LINK_DATE= "08/04/2004 07:56:15" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "iedw.exe" SIZE= "18432" CHECKSUM= "0x88F1640" BIN_FILE_VERSION= "5.1.2600.2180" BIN_PRODUCT_VERSION= "5.1.2600.2180" PRODUCT_VERSION= "5.1.2600.2180" FILE_DESCRIPTION= "IE Crash Detection" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "iedw.exe" INTERNAL_NAME= "iedw.exe" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x67D2" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "5.1.2600.2180" UPTO_BIN_PRODUCT_VERSION= "5.1.2600.2180" LINK_DATE= "08/04/2004 06:02:35" UPTO_LINK_DATE= "08/04/2004 06:02:35" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "IEXPLORE.EXE" SIZE= "93184" CHECKSUM= "0xE187626E" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Internet Explorer" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "IEXPLORE.EXE" INTERNAL_NAME= "iexplore" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x23C72" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 06:00:33" UPTO_LINK_DATE= "08/04/2004 06:00:33" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\icwconn.dll" SIZE= "61440" CHECKSUM= "0xDD04DAB" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Internet Connection Wizard" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "icwconn.dll" INTERNAL_NAME= "icwconn" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x11BD7" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 07:56:14" UPTO_LINK_DATE= "08/04/2004 07:56:14" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\icwconn1.exe" SIZE= "214528" CHECKSUM= "0xC9B5555" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Internet Connection Wizard" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "icwconn1.exe" INTERNAL_NAME= "icwconn1" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x3C746" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 05:59:19" UPTO_LINK_DATE= "08/04/2004 05:59:19" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\icwconn2.exe" SIZE= "86016" CHECKSUM= "0x7DE2AFFE" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Internet Connection Wizard" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "ICWCONN2.EXE" INTERNAL_NAME= "ICWCONN2" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x1DDE9" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 05:59:22" UPTO_LINK_DATE= "08/04/2004 05:59:22" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\icwdl.dll" SIZE= "32768" CHECKSUM= "0xF4CC9266" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Internet Service MIME Mutlipart Download" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "ICWDL.DLL" INTERNAL_NAME= "ICWDL" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x2" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x174A9" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 07:56:16" UPTO_LINK_DATE= "08/04/2004 07:56:16" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\icwhelp.dll" SIZE= "172032" CHECKSUM= "0xCBAB0AC0" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Internet Connection Wizard Helper functions" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "icwhelp.dll" INTERNAL_NAME= "icwhelp" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x33E62" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 07:56:17" UPTO_LINK_DATE= "08/04/2004 07:56:17" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\icwres.dll" SIZE= "61440" CHECKSUM= "0xA488AA92" BIN_FILE_VERSION= "6.0.2600.0" BIN_PRODUCT_VERSION= "6.0.2600.0" PRODUCT_VERSION= "6.00.2600.0000" FILE_DESCRIPTION= "Internet Connection Wizard" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2600.0000 (xpclient.010817-1148)" ORIGINAL_FILENAME= "icwres.dll" INTERNAL_NAME= "icwres" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x1AA60" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2600.0" UPTO_BIN_PRODUCT_VERSION= "6.0.2600.0" LINK_DATE= "08/18/2001 05:35:05" UPTO_LINK_DATE= "08/18/2001 05:35:05" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\icwrmind.exe" SIZE= "24576" CHECKSUM= "0x70643FDC" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Internet Connection Wizard Reminder" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "ICWRMIND.EXE" INTERNAL_NAME= "ICWRMIND" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x13447" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 05:59:09" UPTO_LINK_DATE= "08/04/2004 05:59:09" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\icwtutor.exe" SIZE= "73728" CHECKSUM= "0xF945F7EB" BIN_FILE_VERSION= "6.0.2600.0" BIN_PRODUCT_VERSION= "6.0.2600.0" PRODUCT_VERSION= "6.00.2600.0000" FILE_DESCRIPTION= "Internet Connection Wizard" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2600.0000 (xpclient.010817-1148)" ORIGINAL_FILENAME= "icwtutor.exe" INTERNAL_NAME= "icwtutor" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x16B27" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2600.0" UPTO_BIN_PRODUCT_VERSION= "6.0.2600.0" LINK_DATE= "08/17/2001 20:49:08" UPTO_LINK_DATE= "08/17/2001 20:49:08" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\icwutil.dll" SIZE= "49152" CHECKSUM= "0xB9156DF5" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Internet Connection Wizard" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "icwutil.dll" INTERNAL_NAME= "icwutil" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0xF816" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 07:56:19" UPTO_LINK_DATE= "08/04/2004 07:56:19" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\inetwiz.exe" SIZE= "20480" CHECKSUM= "0x3D8A325B" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Internet Connection Wizard" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "INETWIZ.EXE" INTERNAL_NAME= "INETWIZ" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0xE297" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 05:59:25" UPTO_LINK_DATE= "08/04/2004 05:59:25" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\isignup.exe" SIZE= "16384" CHECKSUM= "0xF8AB8D6E" BIN_FILE_VERSION= "6.0.2600.0" BIN_PRODUCT_VERSION= "6.0.2600.0" PRODUCT_VERSION= "6.00.2600.0000" FILE_DESCRIPTION= "Internet Signup" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2600.0000 (xpclient.010817-1148)" ORIGINAL_FILENAME= "ISIGNUP.EXE" INTERNAL_NAME= "ISIGNUP" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x443C" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2600.0" UPTO_BIN_PRODUCT_VERSION= "6.0.2600.0" LINK_DATE= "08/17/2001 20:48:46" UPTO_LINK_DATE= "08/17/2001 20:48:46" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "Connection Wizard\trialoc.dll" SIZE= "40960" CHECKSUM= "0x68F70073" BIN_FILE_VERSION= "6.0.2600.0" BIN_PRODUCT_VERSION= "6.0.2600.0" PRODUCT_VERSION= "6.00.2600.0000" FILE_DESCRIPTION= "Internet Connection Wizard Trial Reminder Helper" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2600.0000 (xpclient.010817-1148)" ORIGINAL_FILENAME= "trialoc.dll" INTERNAL_NAME= "trialoc" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x1" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x198FE" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2600.0" UPTO_BIN_PRODUCT_VERSION= "6.0.2600.0" LINK_DATE= "08/18/2001 05:36:03" UPTO_LINK_DATE= "08/18/2001 05:36:03" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "PLUGINS\NPDocBox.dll" SIZE= "225280" CHECKSUM= "0x37ED28B7" BIN_FILE_VERSION= "1.0.30.95" BIN_PRODUCT_VERSION= "1.0.30.95" PRODUCT_VERSION= "1.0.30.95" FILE_DESCRIPTION= "InterTrust Redemption Wizard" COMPANY_NAME= "InterTrust Technologies Corporation, Inc." PRODUCT_NAME= "InterTrust Redemption Wizard" FILE_VERSION= "1.0.30.95" ORIGINAL_FILENAME= "NPDocBox.dll" INTERNAL_NAME= "WIZPLUGIN" LEGAL_COPYRIGHT= "Copyright © 2000, 2001 InterTrust Technologies Corporation, Inc., Santa Clara, CA." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x4" VERFILETYPE= "0x2" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x0" LINKER_VERSION= "0x0" UPTO_BIN_FILE_VERSION= "1.0.30.95" UPTO_BIN_PRODUCT_VERSION= "1.0.30.95" LINK_DATE= "01/30/2001 21:10:00" UPTO_LINK_DATE= "01/30/2001 21:10:00" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "PLUGINS\nppdf32.dll" SIZE= "133376" CHECKSUM= "0x4906ED95" BIN_FILE_VERSION= "6.0.0.878" BIN_PRODUCT_VERSION= "6.0.0.878" PRODUCT_VERSION= "6.0.0.2003051500" FILE_DESCRIPTION= "Adobe Acrobat Plug-In Version 6.00 for Netscape" COMPANY_NAME= "Adobe Systems Inc." PRODUCT_NAME= "Adobe Acrobat" FILE_VERSION= "6.0.0.2003051500" ORIGINAL_FILENAME= "NPPDF32.DLL" LEGAL_COPYRIGHT= "Copyright 1984-2003 Adobe Systems Incorporated and its licensors. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x10001" VERFILETYPE= "0x2" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x28D49" LINKER_VERSION= "0x0" UPTO_BIN_FILE_VERSION= "6.0.0.878" UPTO_BIN_PRODUCT_VERSION= "6.0.0.878" LINK_DATE= "05/15/2003 08:01:47" UPTO_LINK_DATE= "05/15/2003 08:01:47" VER_LANGUAGE= "English (United States) [0x409]" />
    <MATCHING_FILE NAME= "PLUGINS\RichFX\Player\nprfxins.dll" SIZE= "569397" CHECKSUM= "0x79C10EAB" BIN_FILE_VERSION= "3.31.659.0" BIN_PRODUCT_VERSION= "3.31.659.0" PRODUCT_VERSION= "3.31.0659" FILE_DESCRIPTION= "RichFX Basic Player" COMPANY_NAME= "RichFX Inc." PRODUCT_NAME= "RichFX Basic Player 3.31.0659" FILE_VERSION= "3.31.0659" ORIGINAL_FILENAME= "nprfxins.dll" INTERNAL_NAME= "nprfxins" LEGAL_COPYRIGHT= "Copyright © RichFX Inc. 2001" VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x4" VERFILETYPE= "0x2" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x0" LINKER_VERSION= "0x0" UPTO_BIN_FILE_VERSION= "3.31.659.0" UPTO_BIN_PRODUCT_VERSION= "3.31.659.0" LINK_DATE= "11/11/2002 15:56:38" UPTO_LINK_DATE= "11/11/2002 15:56:38" VER_LANGUAGE= "English (United States) [0x409]" />
    </EXE>
    <EXE NAME= "mshtmled.dll" FILTER= "GRABMI_FILTER_THISFILEONLY ">
    <MATCHING_FILE NAME= "mshtmled.dll" SIZE= "448512" CHECKSUM= "0xE280C2ED" BIN_FILE_VERSION= "6.0.2900.2180" BIN_PRODUCT_VERSION= "6.0.2900.2180" PRODUCT_VERSION= "6.00.2900.2180" FILE_DESCRIPTION= "Microsoft (R) HTML Editing Component" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "MSHTMLED.DLL" INTERNAL_NAME= "MSHTMLED" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x2" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0x753FE" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "6.0.2900.2180" UPTO_BIN_PRODUCT_VERSION= "6.0.2900.2180" LINK_DATE= "08/04/2004 07:58:10" UPTO_LINK_DATE= "08/04/2004 07:58:10" VER_LANGUAGE= "English (United States) [0x409]" />
    </EXE>
    <EXE NAME= "kernel32.dll" FILTER= "GRABMI_FILTER_THISFILEONLY ">
    <MATCHING_FILE NAME= "kernel32.dll" SIZE= "983552" CHECKSUM= "0x4CE79457" BIN_FILE_VERSION= "5.1.2600.2180" BIN_PRODUCT_VERSION= "5.1.2600.2180" PRODUCT_VERSION= "5.1.2600.2180" FILE_DESCRIPTION= "Windows NT BASE API Client DLL" COMPANY_NAME= "Microsoft Corporation" PRODUCT_NAME= "Microsoft® Windows® Operating System" FILE_VERSION= "5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)" ORIGINAL_FILENAME= "kernel32" INTERNAL_NAME= "kernel32" LEGAL_COPYRIGHT= "© Microsoft Corporation. All rights reserved." VERFILEDATEHI= "0x0" VERFILEDATELO= "0x0" VERFILEOS= "0x40004" VERFILETYPE= "0x2" MODULE_TYPE= "WIN32" PE_CHECKSUM= "0xFF848" LINKER_VERSION= "0x50001" UPTO_BIN_FILE_VERSION= "5.1.2600.2180" UPTO_BIN_PRODUCT_VERSION= "5.1.2600.2180" LINK_DATE= "08/04/2004 07:56:36" UPTO_LINK_DATE= "08/04/2004 07:56:36" VER_LANGUAGE= "English (United States) [0x409]" />
    </EXE>
    </DATABASE>
     
    10NY,
    #5
Thread Status:
Not open for further replies.

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.